Fooling AI Agents: Web-Based Indirect Prompt Injection Observed in the Wild | AI Sec Watch